Malware

Malware.AI.3623622963 malicious file

Malware Removal

The Malware.AI.3623622963 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3623622963 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.3623622963?


File Info:

name: ADB0279BE1DC0DA268DD.mlw
path: /opt/CAPEv2/storage/binaries/1007cee788e1c0cdfe108856d83613fb12a98bfdff14028aeaa2dc6778d0c714
crc32: 773B5517
md5: adb0279be1dc0da268dd808249112164
sha1: 52f5c6a4d1bf9154e3db42c6d50dc32748a6b696
sha256: 1007cee788e1c0cdfe108856d83613fb12a98bfdff14028aeaa2dc6778d0c714
sha512: 95898f513f9d88f523652c710492220e33b93ebb592b439781623709fb58c1fbd4240af4bace3d777b103b93592eaf4d28d008ed6c2fc924ea647bfff69c77ed
ssdeep: 96:sJpmvSXIw11OIGDc8r7XpJxJINyYNrCbPt4UBTnAWCc/XvhmXhJ27:sJQViORI8nXp7ErxCbVh9fr/XJAhE7
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T123E19E7BED1C5E17DA835A3BA1435FA0727AF39043C98B8473FC37A528AE5191064D36
sha3_384: 221d717ebbd9ee11d323a75017fb8940c5146d9f2fb68dbeca5097545e4de043e3e6363908da6daaa49b5ebb34bcb292
ep_bytes: 60be006040008dbe00b0ffff5783cdff
timestamp: 2011-08-27 16:06:05

Version Info:

0: [No Data]

Malware.AI.3623622963 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Razy.158071
FireEyeGeneric.mg.adb0279be1dc0da2
ALYacGen:Variant.Razy.158071
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004bfae41 )
AlibabaTrojanPSW:Win32/BotNet.6a0fdd51
K7GWTrojan ( 004bfae41 )
Cybereasonmalicious.be1dc0
CyrenW32/Trojan.HJH.gen!Eldorado
SymantecInfostealer.Banker.C
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Zeus.B
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Zbot-30638
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.158071
NANO-AntivirusTrojan.Win32.TrjGen.dzoefg
AvastWin32:Malware-gen
TencentWin32.Trojan.Genome.Lqom
Ad-AwareGen:Variant.Razy.158071
EmsisoftGen:Variant.Razy.158071 (B)
ComodoMalware@#3sr6e00fw1mdc
DrWebBackDoor.Siggen.49231
ZillyaTrojan.Genome.Win32.201960
TrendMicroCryp_Xin1
McAfee-GW-EditionBehavesLike.Win32.Generic.zc
SophosMal/Generic-S
IkarusBackdoor.Win32.BotNet
GDataGen:Variant.Razy.158071
JiangminTrojan/Genome.clxx
WebrootW32.Malware.Gen
AviraTR/Crypt.XPACK.Gen7
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASMalwS.20D30E
KingsoftWin32.Troj.Genome.(kcloud)
ViRobotTrojan.Win32.Genome.7168.B
MicrosoftPWS:Win32/Zbot.TV
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.HDC.C62660
McAfeePWS-Zbot.al
VBA32Trojan.Zbot.12523
MalwarebytesMalware.AI.3623622963
TrendMicro-HouseCallCryp_Xin1
RisingTrojan.Win32.Generic.1476B72D (C64:YzY0OtEjCZdMaGKZZ4n2tRkDhkI)
YandexTrojan.GenAsa!WHJr+77T2UQ
MaxSecureTrojan.Malware.4916536.susgen
FortinetW32/Generic.AC.73A8A!tr
BitDefenderThetaGen:NN.ZexaF.34606.amGfaK8CCif
AVGWin32:Malware-gen
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.3623622963?

Malware.AI.3623622963 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment